Input validation vulnerability in Guest posting / Frontend Posting / Front Editor – WP Front User Submit 4.9.3

The WP Front User Submit / Front Editor plugin on WordPress can be attacked by hackers in versions up to 4.9.3. This is because the plugin does not properly clean up user input and output. This allows attackers with administrator-level access to add harmful code to pages that will run when someone views the page. This only affects websites with multiple pages and websites that have disabled unfiltered_html.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.